Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37029
HistorySep 14, 2022 - 9:06 a.m.

Information Disclosure

2022-09-1409:06:27
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
typo3
information disclosure
user authentication
attacker
account information

EPSS

0.001

Percentile

30.8%

TYPO3 is vulnerable to information disclosure. The vulnerability exists because the response time during user authentication is not properly handled which allows an attacker to gain access to the existing and non-existing user account information.

EPSS

0.001

Percentile

30.8%